Endpoint Encryption

 View Only
  • 1.  Cannot export private key

    Posted Apr 16, 2015 05:25 PM

    We are running PGP Desktop 10.2.1 on one machine and now we wanted to export our keys to run it on second one. But while exporting a public key we cannot include private ones (the tickbox is greyed out). Therefore, we of course obtain an error message on the second PC that "It is not possible to decrypt this message because the keyring does not contain usable private key(s) corresponding to any of the above public key(s)". Any ideas how to enable the option "Include private keys"?

    On the first machine everything works properly. It means that we can encrypt and decrypt files using the keypair I mentioned.

    I searched the forum but any of other discussions I read didn't help me to resolve the issue.

    Regards



  • 2.  RE: Cannot export private key
    Best Answer

    Broadcom Employee
    Posted Apr 17, 2015 04:28 AM

    Hi, Sigurd,

    You are not able to export private key and they tick option is greyed out becuase there is no private key available. Can you check in fact that the key which you are trying to export is in fact a keyring (public and private portion). It should has got a double key icon/symbol as oposite to one grey key icon which is just a publick key. If you have got more than one key just highlight the keyring and than export the key and you will be able to include private portions.

    You can also navigate to the default keyring folder and copy them to another machine default keyring folder

    C:\Users\UserName\Documents\PGP

    Private part is called secring.skr

    HTH



  • 3.  RE: Cannot export private key

    Posted Jun 02, 2015 06:32 AM
      |   view attached

    Thank you for you're help. You're right, I took public key instead of a private one.

    I imported the private and public keys to the second machine and now everthings works correctly. PGP is decrypting and encrypting files as it should.

    One thing everyone should be aware of is that the key should be signed before it's Trust is set to Implicit. It took me some time to find this info in manual, while I didn't find it in any discussion on the internet.

    The only thing I'm concerned about is that when I signed my private key a message appeared. Why is this message showing up?

    As I mentioned everything works just fine. Thank you 4 help!